Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241051 7.5 危険 minichat - Minichat の ftag.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5283 2012-09-25 15:36 2006-10-13 Show GitHub Exploit DB Packet Storm
241052 7.5 危険 navyism - n@board の naboard_pnr.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5281 2012-09-25 15:36 2006-10-13 Show GitHub Exploit DB Packet Storm
241053 7.5 危険 マイクロソフト - Microsoft Dynamics GP におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2006-5266 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
241054 5 警告 マイクロソフト - Microsoft Dynamics GP におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2006-5265 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
241055 6.8 警告 MySQLDumper-Team - MysqlDumper の sql.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5264 2012-09-25 15:36 2006-10-12 Show GitHub Exploit DB Packet Storm
241056 6.5 警告 Hastymail - Hastymail の lib/session.php における CRLF インジェクションの脆弱性 - CVE-2006-5262 2012-09-25 15:36 2006-10-12 Show GitHub Exploit DB Packet Storm
241057 7.5 危険 mamboxchange - Mark Van Bellen registration_detailed における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5254 2012-09-25 15:36 2006-10-12 Show GitHub Exploit DB Packet Storm
241058 5.1 警告 opendock - OpenDock Easy Blog における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5244 2012-09-25 15:36 2006-10-11 Show GitHub Exploit DB Packet Storm
241059 7.5 危険 opendock - OpenDock Easy Doc における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5243 2012-09-25 15:36 2006-10-11 Show GitHub Exploit DB Packet Storm
241060 5.1 警告 opendock - OpenDock Easy Gallery における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5241 2012-09-25 15:36 2006-10-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
284861 - microsoft office_word_viewer
office_compatibility_pack
word
Microsoft Word 2007 SP3, Word Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Double Delete Remote Code… CWE-94
Code Injection
CVE-2014-6333 2024-11-21 11:14 2014-11-12 Show GitHub Exploit DB Packet Storm
284862 - microsoft active_directory_federation_services Microsoft Active Directory Federation Services (AD FS) 2.0, 2.1, and 3.0, when a configured SAML Relying Party lacks a sign-out endpoint, does not properly process logoff actions, which makes it easi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-6331 2024-11-21 11:14 2014-11-12 Show GitHub Exploit DB Packet Storm
284863 - microsoft internet_explorer Microsoft Internet Explorer 7 through 11 allows remote attackers to obtain sensitive clipboard information via a crafted web site, aka "Internet Explorer Clipboard Information Disclosure Vulnerabilit… CWE-200
Information Exposure
CVE-2014-6323 2024-11-21 11:14 2014-11-12 Show GitHub Exploit DB Packet Storm
284864 - microsoft windows_server_2008
windows_server_2012
windows_rt
windows_8.1
windows_7
windows_rt_8.1
windows_vista
windows_8
The Windows Audio service in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow… CWE-20
 Improper Input Validation 
CVE-2014-6322 2024-11-21 11:14 2014-11-12 Show GitHub Exploit DB Packet Storm
284865 - microsoft windows_server_2008
windows_server_2012
windows_rt
windows_8.1
windows_7
windows_rt_8.1
windows_vista
windows_8
windows_server_2003
Schannel in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8… CWE-94
Code Injection
CVE-2014-6321 2024-11-21 11:14 2014-11-12 Show GitHub Exploit DB Packet Storm
284866 - microsoft windows_server_2008
windows_server_2012
windows_rt
windows_8.1
windows_7
windows_rt_8.1
windows_vista
windows_8
windows_server_2003
Array index error in win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows … CWE-129
 Improper Validation of Array Index
CVE-2014-6317 2024-11-21 11:14 2014-11-12 Show GitHub Exploit DB Packet Storm
284867 - microsoft windows_server_2008
windows_server_2012
windows_rt
windows_8.1
windows_8
windows_vista
windows_rt_8.1
windows_7
The audit logon feature in Remote Desktop Protocol (RDP) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, an… CWE-287
Improper Authentication
CVE-2014-6318 2024-11-21 11:14 2014-11-12 Show GitHub Exploit DB Packet Storm
284868 - opensuse
phpmyadmin
opensuse
phpmyadmin
Cross-site scripting (XSS) vulnerability in the micro history implementation in phpMyAdmin 4.0.x before 4.0.10.3, 4.1.x before 4.1.14.4, and 4.2.x before 4.2.8.1 allows remote attackers to inject arb… CWE-79
Cross-site Scripting
CVE-2014-6300 2024-11-21 11:14 2014-11-8 Show GitHub Exploit DB Packet Storm
284869 - arubanetworks clearpass Cross-site request forgery (CSRF) vulnerability in the Insight module in Aruba Networks ClearPass before 6.3.6 and 6.4.x before 6.4.1 allows remote attackers to hijack the authentication of a logged … CWE-79
Cross-site Scripting
CVE-2014-6623 2024-11-21 11:14 2014-11-8 Show GitHub Exploit DB Packet Storm
284870 - arubanetworks clearpass Cross-site scripting (XSS) vulnerability in Aruba Networks ClearPass before 6.3.6 and 6.4.x before 6.4.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2014-6620 2024-11-21 11:14 2014-11-8 Show GitHub Exploit DB Packet Storm